SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by…
mitre·CWE-327·Published 2016-10-14